Техническая информация
- '<SYSTEM32>\wermgr.exe' -queuereporting
- '<SYSTEM32>\taskhost.exe' $(Arg0)
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\BOWDBRP7\IE9CompatViewList[1].xml
- C:\ProgramData\Microsoft\RAC\Temp\sql8516.tmp
- C:\ProgramData\Microsoft\RAC\Temp\sqlC755.tmp
- C:\ProgramData\Microsoft\RAC\Temp\sqlC679.tmp
- C:\ProgramData\Microsoft\RAC\Temp\sql8536.tmp
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5SDOMI\ip[1].php
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\YF7T7AK2\watch[1]
- <SYSTEM32>\SysXP32.dll
- C:\ProgramData\Microsoft\RAC\Temp\sql8516.tmp
- C:\ProgramData\Microsoft\RAC\Temp\sql8536.tmp
- '20#.#6.232.182':443
- 'localhost':61102
- '20#.#6.232.182':80
- 'localhost':54473
- 'dy####ate.no-ip.com':80
- 'br.##utube.com':80
- 20#.#6.232.182/IE9CompatViewList.xml
- br.##utube.com/watch?v=###########
- dy####ate.no-ip.com/ip.php
- DNS ASK ur#.##crosoft.com
- DNS ASK dn#.##ftncsi.com
- DNS ASK ie######t.ie.microsoft.com
- DNS ASK dy####ate.no-ip.com
- DNS ASK br.##utube.com
- DNS ASK www.google.com
- ClassName: 'MS_WebCheckMonitor' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'